VDB
BDU%3A2022-04137
BDU%3A2022-04137
PUBLISHED
CVSS 5.099999904632568 MEDIUM
Уязвимость метода set утилиты json-pointer, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
5.099999904632568
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Manuel Stofer | json-pointer |
Timeline
- Jul 6, 2022 CVE Published
References
- https://github.com/advisories/GHSA-v5vg-g7rq-363w url
- https://bugzilla.redhat.com/show_bug.cgi?id=2020369 url
- https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARSNPM-1910686 url
- https://snyk.io/vuln/SNYK-JS-JSONPOINTER-1577287 url
- https://nvd.nist.gov/vuln/detail/CVE-2021-23820 url
- https://github.com/manuelstofer/json-pointer url
- https://github.com/manuelstofer/json-pointer/blob/master/index.js#23L78 advisory
- https://github.com/manuelstofer/json-pointer/issues/35 advisory